temp0_activation.exe

Release Control

Sony DADC Austria AG

Publisher:
Sony DADC Austria AG  (signed and verified)

Product:
Release Control

Description:
Release Control Unpacker

Version:
2.0.2.0

MD5:
54ed5122cb62dac4d51b883ac1da7dad

SHA-1:
670bd61ad816d691924e07d0dbd87c434c407271

SHA-256:
a615bad1a1c9dd9ef18e625bc40d2e95f1dd3e1df974a385d6bce6bf12f9063f

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/18/2024 8:36:06 PM UTC  (today)

File size:
7.9 MB (8,271,760 bytes)

Product version:
2.0.2.0

Copyright:
Copyright (C) 2011 Sony DADC Austria AG

Original file name:
RC_unpacker.exe

File type:
Executable application (Win32 EXE)

Language:
English

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\temp0_activation.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
9/25/2011 7:30:00 PM

Valid to:
10/11/2014 7:29:59 PM

Subject:
CN=Sony DADC Austria AG, OU=Virtual Factory, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Sony DADC Austria AG, L=Salzburg, S=Salzburg, C=AT

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
6477E8A51D1A6897261E5352F0EBE482

File PE Metadata
OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
7.10

CTPH (ssdeep):
196608:SGd44EFJgzXD2X4N4Wmz+ps5Kea9y0DtdJ9FtdBkOLE:D7EDTX4N4Wmp5KeaFDrXdBkOI

Entry address:
0x3800

Entry point:
B8, EF, FF, FF, FF, 8B, 44, 04, 11, A3, EC, 26, F6, 00, 89, 25, F0, 26, F6, 00, E8, E7, D7, FF, FF, A3, 20, 4A, F8, 00, E8, 41, D9, FF, FF, A3, DC, 4A, F8, 00, 83, 3D, DC, 4A, F8, 00, 00, 75, 19, 90, 52, BA, B5, 2C, F0, 00, 90, 9C, 81, F2, B4, 2C, F0, 00, 90, 9D, 87, 14, 24, E8, 4C, 30, A1, FF, 74, 1F, B8, C3, FF, FF, FF, 8B, 80, 19, 4B, F8, 00, 8B, 80, D1, 1F, 00, 00, 25, 00, 02, 00, 00, 74, 24, E8, E4, DA, FF, FF, EB, 1D, B8, 49, FE, FF, FF, 8B, 80, 93, 4C, F8, 00, 8B, 80, D1, 1F, 00, 00, 25, 00, 02, 00...
 
[+]

Code size:
10.8 MB (11,329,536 bytes)

Scan temp0_activation.exe - Powered by Reason Core Security